CVE-2014-1208
LOW severity · CVSS 3.3
3.3CVSS LOW
Summary
VMware Workstation 9.x before 9.0.1, VMware Player 5.x before 5.0.1, VMware Fusion 5.x before 5.0.1, VMware ESXi 4.0 through 5.1, and VMware ESX 4.0 and 4.1 allow guest OS users to cause a denial of service (VMX process disruption) by using an invalid port.
Impact & exploitability
Attack vectorAdjacent
Attack complexityLow
Privileges required—
User interaction—
Confidentiality impactNone
Integrity impactNone
Availability impact—
Exploit probability (EPSS)1%
AV:A/AC:L/Au:N/C:N/I:N/A:P
Affected products we track (1)
Recommendation
Apply the vendor fix in your normal patch cycle. Open any affected product above for its exact safe version.
Additional information
- NVD record
- http://www.vmware.com/security/advisories/VMSA-2014-0001.htmlAdvisory
- http://osvdb.org/102197
- http://secunia.com/advisories/56499
- http://www.securityfocus.com/bid/64994
- http://www.securitytracker.com/id/1029643
- http://www.securitytracker.com/id/1029644
- https://exchange.xforce.ibmcloud.com/vulnerabilities/90558